计算机科学
计算机安全
可验证秘密共享
密钥托管
钥匙(锁)
云计算
单点故障
公钥证书
吊销列表
公钥密码术
数据共享
撤销
加密
互联网
认证(法律)
证书
信息隐私
可信第三方
关键字搜索
架空(工程)
物联网
数据安全
不变性
数据完整性
密码学
脆弱性(计算)
可靠性(半导体)
可信计算
凭据
私人信息检索
作者
Z. D. Wang,Qiang Wang,Fucai Zhou,Bing Li,Jian Xu,Haoyan Huang
标识
DOI:10.1109/trustcom66490.2025.00299
摘要
With the rapid advancement of Internet of Things (IoT) technology, the security and utilization of data outsourced to the cloud is a prerequisite for IoT application in actual production. Attribute-based keyword search (ABKS) has emerged as a powerful primitive for fine-grained search over encrypted data for IoT. While recent advanced ABKS schemes support more abundant functions and query structures, they do not consider multi-owner setting. Moreover, these schemes typically rely on a single trusted attribute authority for user certificate verification and private key distribution. This centralization creates a single point of failure and raises security concerns, such as key escrow. Furthermore, the existence of malicious entities necessitates verification mechanisms. However, most existing approaches introduce unvetted third-party validators, leading to reliability issues and privacy risks. Nevertheless, in numerous schemes, malicious entities persist in operational status, thereby compromising systemic security. To address these challenges, we propose ABKS with user-generated keys (ABKS-UGK), which decentralizes key generation to individual data users, fundamentally resolving the key escrow vulnerabilities in traditional schemes. It not only leverages blockchain’s immutability for secure result verification, but also incorporates a revocation mechanism against malicious entities. Extensive experimental evaluations demonstrate its efficiency and reliability, making it suitable for secure, verifiable data sharing in real world.
科研通智能强力驱动
Strongly Powered by AbleSci AI